✦ Luna Orbit — Cybersecurity

Principal Security Engineer

at Citizens Financial Group

📍 United States Remote Posted March 12, 2026
Type Not Specified
Experience senior
Exp. Years Not specified
Education Not specified
Category Cybersecurity

This role involves leading the design and implementation of security detection, alerting, and response workflows using Splunk and cloud security tools within an enterprise environment.

  • Develop security detections
  • Manage security telemetry
  • Implement automated response workflows
  • Collaborate with security teams
  • Maintain security logging standards

The technical scope includes managing security telemetry, developing detection rules in Splunk, integrating with cloud security platforms, and automating security workflows.

The ideal candidate is a senior cybersecurity engineer with extensive hands-on experience with Splunk, security logging, and alerting, along with familiarity with cloud security tools like AWS and Azure. They should be capable of leading security detection and response initiatives.

hands-on experience with Splunk (ES/SPL/Knowledge Objects)experience with Cribl (Stream/Edge/Cloud)knowledge of security loggingexperience with AWS and Azuresecurity alerting
experience with CSPM toolingAI logging and detection
SplunkCriblCrowdStrikeCiscoPalo AltoOktaAWSAzure
SplunkSplunk Enterprise SecuritySPLKnowledge ObjectsCriblStreamEdgeCloudCrowdStrikeCiscoPalo AltoOktaAWSAzuresecurity loggingsecurity alertingrisk management
SplunkSplunk Enterprise SecuritySplunk SPLSplunk Knowledge ObjectsCriblStreamEdgeCloudCrowdStrikeCiscoPalo AltoOktaAWSAzuresecurity loggingsecurity alertingsecurity telemetryrisk management
collaborationleadershipcommunicationindependent work
Industry Banking/Financial Services
Job Function Lead enterprise security detection and response initiatives using Splunk and cloud security tools.
Security EngineerSplunkSplunk Enterprise SecuritySplunk SPLSplunk Knowledge ObjectsCriblStreamEdgeCloudCrowdStrikeCiscoPalo AltoOktaAWSAzuresecurity loggingsecurity alertingsecurity telemetryrisk management

Lack of experience with Splunk or security logging, No experience with cloud security tools, Unfamiliarity with security telemetry sources, No experience with security alerting

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile